logo

PoC Exploit Disclosed: Researcher Unveils Windows MS-EVEN RPC Vulnerability

ID: 67730e64-d9a4-552f-867a-55bb427329fd

STIX ID: report--67730e64-d9a4-552f-867a-55bb427329fd

Feed Name: securityonline.info

Threat Score
75/100

Date Published: 2026-03-15

Date Updated: 2026-04-23

Author: Ddos

...
...

SafeBreach Labs disclosed CVE-2025-29969 (EventLogin), a TOCTOU vulnerability in the Windows MS-EVEN RPC service that enables low-privileged code to remotely write arbitrary files and potentially achieve remote code execution across workgroup and Active Directory environments; a public PoC was published and Microsoft issued a patch in May 2025.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.